Yahoo fixes Web mail security flaw
Yahoo has fixed a security flaw in its free Web-based e-mail service that opened the door to phishing scams, account hijacks and other attacks.
The flaw, known as a cross-site scripting vulnerability, existed because Yahoo’s Web site did not detect certain script tags in combination with certain special characters, according to SEC Consult, which issued an advisory on the flaw Friday.
A Yahoo representative said it fixed the most recent flaws in the “last few weeks” and that its users are protected.
Source: News.com
Tweet
|

RSS Feeds 
